CVE-2011-5260
12.02.2013, 20:55
Cross-site scripting (XSS) vulnerability in SAP/BW/DOC/METADATA in SAP NetWeaver allows remote attackers to inject arbitrary web script or HTML via the page parameter.
| Vendor | Product | Version |
|---|---|---|
| sap | netweaver | - |
| sap | netweaver | 4.0 |
| sap | netweaver | 6.4 |
| sap | netweaver | 7.0 |
| sap | netweaver | 7.0:ehp1 |
| sap | netweaver | 7.0:ehp2 |
| sap | netweaver | 7.0:sp15 |
| sap | netweaver | 7.0:sp8 |
𝑥
= Vulnerable software versions
References